X11 Display Server Vulnerability in Thermo Fisher Ion Torrent OneTouch 2 Devices
CVE-2025-54304
9.8CRITICAL
What is CVE-2025-54304?
A security flaw has been identified in Thermo Fisher Ion Torrent OneTouch 2 devices where an X11 display server is initiated upon powering on, exposing itself on all network interfaces via port 6000. This configuration allows unauthorized devices on the network to access the display server if the device does not retain its default IP address of 192.168.2.15 after connecting to a DHCP-enabled network. The exposed server can enable malicious actors to gain root privileges and execute code remotely through interactions with the matchbox-desktop interface. It is crucial to note that this vulnerability affects devices that are no longer supported by the vendor, increasing the urgency for affected users to secure their systems.
